Vulnerabilities > Contens

DATE CVE VULNERABILITY TITLE RISK
2005-12-20 CVE-2005-4389 Remote Security vulnerability in Contens 2.5/3.0
search.cfm in CONTENS 3.0 and earlier allows remote attackers to obtain the full server path via invalid (1) submit.y, (2) bool, (3) itemsperpage, (4) submit, (5) submit.x, (6) criteria, (7) advanced, and (8) intern parameters.
network
low complexity
contens
5.0
2005-12-20 CVE-2005-4388 Cross-Site Scripting vulnerability in CONTENS Near Parameter
Cross-site scripting (XSS) vulnerability in search.cfm in CONTENS 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the near parameter.
network
contens
4.3